# My Pentesting Space

## HACKJIJI

- [Welcome to Hackjiji](https://docs.hackjiji.org/readme.md)
- [CVE-2026-9177: SSTI in SecureTransport MFT Gateway](https://docs.hackjiji.org/blog/cve-2026-9177-ssti-in-securetransport-mft-gateway.md): How Server-Side Template Injection (SSTI) Led to Remote Code Execution in One of the Most Popular Managed File Transfer (MFT) Tools.
- [Basics](https://docs.hackjiji.org/web-pentesting/basics.md)
- [Common Gateway Interfaces](https://docs.hackjiji.org/web-pentesting/common-gateway-interfaces.md)
- [CGI Applications - Shellshock](https://docs.hackjiji.org/web-pentesting/common-gateway-interfaces/cgi-applications-shellshock.md)
- [Tomcat CGI](https://docs.hackjiji.org/web-pentesting/common-gateway-interfaces/tomcat-cgi.md)
- [Customer Service Mgmt & Configuration Management](https://docs.hackjiji.org/web-pentesting/customer-service-mgmt-and-configuration-management.md)
- [osTicket](https://docs.hackjiji.org/web-pentesting/customer-service-mgmt-and-configuration-management/osticket.md)
- [Gitlab](https://docs.hackjiji.org/web-pentesting/customer-service-mgmt-and-configuration-management/gitlab.md)
- [Infra/Network monitoring tools](https://docs.hackjiji.org/web-pentesting/infra-network-monitoring-tools.md)
- [PRTG Network Monitor](https://docs.hackjiji.org/web-pentesting/infra-network-monitoring-tools/prtg-network-monitor.md)
- [Splunk](https://docs.hackjiji.org/web-pentesting/infra-network-monitoring-tools/splunk.md)
- [CMS](https://docs.hackjiji.org/web-pentesting/cms.md)
- [Apache Tomcat](https://docs.hackjiji.org/web-pentesting/cms/apache-tomcat.md)
- [Wordpress](https://docs.hackjiji.org/web-pentesting/cms/wordpress.md)
- [Joomla](https://docs.hackjiji.org/web-pentesting/cms/joomla.md)
- [Drupal](https://docs.hackjiji.org/web-pentesting/cms/drupal.md)
- [Jenkins](https://docs.hackjiji.org/web-pentesting/cms/jenkins.md)
- [Other web applications](https://docs.hackjiji.org/web-pentesting/other-web-applications.md)
- [Adobe Fusion](https://docs.hackjiji.org/web-pentesting/other-web-applications/adobe-fusion.md)
- [API](https://docs.hackjiji.org/web-pentesting/api.md)
- [Disclosed Google API Key](https://docs.hackjiji.org/web-pentesting/api/disclosed-google-api-key.md)
- [Swagger installation on localhost](https://docs.hackjiji.org/web-pentesting/api/swagger-installation-on-localhost.md)
- [Web pentest cheatsheetl](https://docs.hackjiji.org/web-pentesting/web-pentest-cheatsheetl.md)
- [Burpsuite and browser tricks](https://docs.hackjiji.org/web-pentesting/burpsuite-and-browser-tricks.md)
- [cUrl cheatsheet](https://docs.hackjiji.org/web-pentesting/curl-cheatsheet.md)
- [Known web CVE's](https://docs.hackjiji.org/web-pentesting/known-web-cves.md)
- [JavaScript Obfuscation/Deobfuscation](https://docs.hackjiji.org/web-pentesting/javascript-obfuscation-deobfuscation.md)
- [Code Review](https://docs.hackjiji.org/web-pentesting/code-review.md)
- [Information Gathering](https://docs.hackjiji.org/binary-analysis/information-gathering.md)
- [Debugging a file](https://docs.hackjiji.org/binary-analysis/debugging-a-file.md)
- [Hardware hacking](https://docs.hackjiji.org/binary-analysis/hardware-hacking.md)
- [Binary analysis](https://docs.hackjiji.org/binary-analysis-1.md)
- [Information Gathering](https://docs.hackjiji.org/binary-analysis-1/information-gathering.md)
- [Basics](https://docs.hackjiji.org/network-pentesting/basics.md)
- [My scanning methodology](https://docs.hackjiji.org/network-pentesting/my-scanning-methodology.md)
- [Nmap favorites](https://docs.hackjiji.org/network-pentesting/nmap-favorites.md)
- [Host discovery](https://docs.hackjiji.org/network-pentesting/host-discovery.md)
- [Network Services](https://docs.hackjiji.org/network-pentesting/network-services.md)
- [RPC-NFC](https://docs.hackjiji.org/network-pentesting/network-services/rpc-nfc.md)
- [WINRM - 5895-5896](https://docs.hackjiji.org/network-pentesting/network-services/winrm-5895-5896.md)
- [FTP - 21](https://docs.hackjiji.org/network-pentesting/network-services/ftp-21.md)
- [SMB - 445](https://docs.hackjiji.org/network-pentesting/network-services/smb-445.md)
- [RDP - 3389](https://docs.hackjiji.org/network-pentesting/network-services/rdp-3389.md)
- [SSH - 22](https://docs.hackjiji.org/network-pentesting/network-services/ssh-22.md)
- [SMTP - 25](https://docs.hackjiji.org/network-pentesting/network-services/smtp-25.md)
- [LDAP - 389](https://docs.hackjiji.org/network-pentesting/network-services/ldap-389.md)
- [Wireshark](https://docs.hackjiji.org/network-pentesting/wireshark.md)
- [Port scanning](https://docs.hackjiji.org/network-pentesting/port-scanning.md)
- [Firewall evasion](https://docs.hackjiji.org/network-pentesting/firewall-evasion.md)
- [Pivoting and double pivoting](https://docs.hackjiji.org/network-pentesting/pivoting-and-double-pivoting.md): In this section, we explore how to set up a SOCKS4a proxy using Metasploit and configure Proxychains4 to route traffic through your proxy. We will explore pivoting and double pivoting
- [Bad USB - Rubber Duckies](https://docs.hackjiji.org/physical-pentesting/bad-usb-rubber-duckies.md)
- [Usefull command's](https://docs.hackjiji.org/linux-pentesting/usefull-commands.md)
- [Privilege escalation](https://docs.hackjiji.org/linux-pentesting/privilege-escalation.md)
- [Windows useful commands](https://docs.hackjiji.org/windows-pentesting/windows-useful-commands.md)
- [Reverse shell](https://docs.hackjiji.org/windows-pentesting/reverse-shell.md): Create reverse shell on windows
- [Privilege escalation](https://docs.hackjiji.org/windows-pentesting/privilege-escalation.md)
- [Basics](https://docs.hackjiji.org/active-directory-pentesting/basics.md)
- [AD](https://docs.hackjiji.org/active-directory-pentesting/ad.md)
- [AAD](https://docs.hackjiji.org/active-directory-pentesting/aad.md)
- [Notes Template Structure](https://docs.hackjiji.org/general/notes-template-structure.md)
- [Coding Agents](https://docs.hackjiji.org/general/coding-agents.md): This page lists interesting (AI) tool that can be used to code stuff
- [Interesting sources](https://docs.hackjiji.org/general/interesting-sources.md): In this page, you will find interesting tools and blog posts about various topics
- [Git](https://docs.hackjiji.org/general/git.md)
- [Docker](https://docs.hackjiji.org/general/docker.md)
- [Hash Cracking](https://docs.hackjiji.org/general/hash-cracking.md)
- [Wordlist](https://docs.hackjiji.org/general/wordlist.md)
- [Encoding/decoding](https://docs.hackjiji.org/general/encoding-decoding.md)
- [Environment setup](https://docs.hackjiji.org/general/environment-setup.md)
- [Install a new OS on seperated boot sector](https://docs.hackjiji.org/general/environment-setup/install-a-new-os-on-seperated-boot-sector.md)
- [Hyper-V](https://docs.hackjiji.org/general/environment-setup/hyper-v.md)
- [Virtualbox](https://docs.hackjiji.org/general/environment-setup/virtualbox.md)
- [VMware](https://docs.hackjiji.org/general/environment-setup/vmware.md)
- [Common installation issues](https://docs.hackjiji.org/general/environment-setup/common-installation-issues.md)
- [Reverse-shell-cheatsheet](https://docs.hackjiji.org/general/reverse-shell-cheatsheet.md)
- [Metasploit cheatsheet](https://docs.hackjiji.org/general/metasploit-cheatsheet.md): In this page, you will find notes that I have made for Metasploit.
- [Vulnerability research](https://docs.hackjiji.org/general/vulnerability-research.md)
- [HackTheBox Meetup - LFI2RCE](https://docs.hackjiji.org/events/hackthebox-meetup-lfi2rce.md)
- [Radio Equans - QR Code Awareness campaign](https://docs.hackjiji.org/events/radio-equans-qr-code-awareness-campaign.md): I had the incredible opportunity to hold a radio event for Equans, the worldwide leaders in terms of energy transition, digital transition and indudstri transofrmation.
- [Cybersecurity job campaign](https://docs.hackjiji.org/events/cybersecurity-job-campaign.md)
